@Shaun, Hi...My settings look similar to yours, and I can even successfully test the settings which confirms that the controller can connect to the AD, problems comes after I authenticate, it will say authenticated and then it goes to the same page for login (i.e. asks for the user name and password). But if I put the wrong credentials it will throws an error to say that the username or password is incorrect.

Nope, no firewall. Managed to get it to work, had to create Roles for the users and assign them using groups that the user belongs to in AD. Also had to specify the SSID that the user can access after authentication.

And no you can only specify a redirect URL on the Guest Service or Hostpot service from what I can see.. The hotspot service doesn't divert clients in my testing. I have a ticket open with Ruckus support regarding this. The guest one works for URL redirection but that does not help me as I want AD authentication for our students.

Ok that looks correct. It should basically work tho. Are you using captive portal for AD Authentication.

Have you imported an SSL certificate which you purchased on the Zone Director as well as the intermediate certificate. I had to create a DNS A record on my Windows Server DNS server. So gave it a name zonedirector.domainname.com then I requested a certificate for this hostname. Captive Portal normally diverts users to the IP Address of the Zone Director but once the certificate is imported it will divert them to the hostname specified in the certificate. We have the captive portal on a guest Vlan so the internal DNS server cannot be contacted so I had to create the Host A record on our Public DNS hosting service.